Vulnerability index

Browse CVEs

869 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Infinite LoopCWE-835 × clear
Unclassified MEDIUM 5.3
CVE-2026-2739

This affects versions of the package bn.js before 5.2.3. Calling maskn(0) on any BN instance corrupts the internal state, causing toString(), divmod(…

Patch available
Fix from $1,600 2026-02-20
Nanazip HIGH 7.5
CVE-2026-27114

NanaZip is an open source file archive. Starting in version 5.0.1252.0 and prior to version 6.0.1630.0, circular `NextOffset` chains cause an infinit…

Fix: 6.0.1630.0+
Fix from $1,950 2026-02-19
Linux Kernel MEDIUM 5.5
CVE-2026-23220

In the Linux kernel, the following vulnerability has been resolved: ksmbd: fix infinite loop caused by next_smb2_rcv_hdr_off reset in error paths T…

Fix: 5.16 / 6.1.164+
Fix from $1,600 2026-02-18
Unclassified MEDIUM 6.0
CVE-2026-0619

A reachable infinite loop via an integer wraparound is present in Silicon Labs' Matter SDK which allows an attacker to trigger a denial of service. A…

Mitigation only
Fix from $1,600 2026-02-12
Unclassified MEDIUM 6.0
CVE-2025-27560

Loop with unreachable exit condition ('infinite loop') for some Intel(R) Platform within Ring 0: Kernel may allow a denial of service. System softwar…

Mitigation only
Fix from $1,600 2026-02-10
Enclave HIGH 8.8
CVE-2026-25533

Enclave is a secure JavaScript sandbox designed for safe AI agent code execution. Prior to 2.10.1, the existing layers of security in enclave-vm are …

Fix: 2.10.1+
Fix from $1,950 2026-02-06
Html MEDIUM 5.3
CVE-2025-58190

The html.Parse function in golang.org/x/net/html has an infinite parsing loop when processing certain inputs, which can lead to denial of service (Do…

Fix: 0.45.0+
Fix from $1,600 2026-02-05
Linux Kernel MEDIUM 5.5
CVE-2026-23109

In the Linux kernel, the following vulnerability has been resolved: fs/writeback: skip AS_NO_DATA_INTEGRITY mappings in wait_sb_inodes() Above the …

Fix: 6.18.8+
Fix from $1,600 2026-02-04
Linux Kernel MEDIUM 5.5
CVE-2026-23082

In the Linux kernel, the following vulnerability has been resolved: can: gs_usb: gs_usb_receive_bulk_callback(): unanchor URL on usb_submit_urb() er…

Patch available
Fix from $1,600 2026-02-04
Fast Dds HIGH 7.5
CVE-2025-64438

Fast DDS is a C++ implementation of the DDS (Data Distribution Service) standard of the OMG (Object Management Group ). Prior to versions 3.4.1, 3.3.…

Fix: 2.6.11 / 3.3.1+
Fix from $1,950 2026-02-03
Ix Ray Engine 1.6 HIGH 7.5
CVE-2026-24831

Loop with Unreachable Exit Condition ('Infinite Loop') vulnerability in ixray-team ixray-1.6-stcop.This issue affects ixray-1.6-stcop: before 1.3.

Fix: 1.3+
Fix from $1,950 2026-01-27
Unclassified CRITICAL 10.0
CVE-2026-24816

Loop with Unreachable Exit Condition ('Infinite Loop') vulnerability in datavane tis (tis-console/src/main/java/com/qlangtech/tis/runtime/module/acti…

Patch available
Fix from $2,300 2026-01-27
Unclassified MEDIUM 5.3
CVE-2026-24802

Loop with Unreachable Exit Condition ('Infinite Loop') vulnerability in briandilley jsonrpc4j (src/main/java/com/googlecode/jsonrpc4j modules). This …

Patch available
Fix from $1,600 2026-01-27
Unclassified CRITICAL 9.2
CVE-2026-24803

Loop with Unreachable Exit Condition ('Infinite Loop') vulnerability in coolsnowwolf lede (package/lean/mt/drivers/mt7615d/src/mt_wifi/embedded/secur…

Patch available
Fix from $2,300 2026-01-27
Unclassified CRITICAL 9.2
CVE-2026-24804

Loop with Unreachable Exit Condition ('Infinite Loop') vulnerability in coolsnowwolf lede (package/lean/mt/drivers/mt7603e/src/mt7603_wifi/common mod…

Patch available
Fix from $2,300 2026-01-27
GitLab MEDIUM 6.5
CVE-2025-13335

GitLab has remediated an issue in GitLab CE/EE affecting all versions from 17.1 before 18.6.4, 18.7 before 18.7.2, and 18.8 before 18.8.2 that under …

Fix: 18.6.4 / 18.7.2+
Fix from $1,600 2026-01-22
Everest HIGH 8.3
CVE-2025-68137

EVerest is an EV charging software stack. Prior to version 2025.10.0, an integer overflow occurring in `SdpPacket::parse_header()` allows the current…

Fix: 2025.10.0+
Fix from $1,950 2026-01-21
Imagemagick MEDIUM 5.5
CVE-2026-23874

ImageMagick is free and open-source software used for editing and manipulating digital images. Versions prior to 7.1.2-13 have a stack overflow via i…

Fix: 7.1.2-13+
Fix from $1,600 2026-01-20
Junos HIGH 7.5
CVE-2026-21905

A Loop with Unreachable Exit Condition ('Infinite Loop') vulnerability in the SIP application layer gateway (ALG) of Juniper Networks Junos OS on SRX…

Fix: 21.2+
Fix from $1,950 2026-01-15
Wireshark MEDIUM 5.5
CVE-2026-0960

HTTP3 protocol dissector infinite loop in Wireshark 4.6.0 to 4.6.2 allows denial of service

Fix: 4.4.13 / 4.6.3+
Fix from $1,600 2026-01-14
Iccdev HIGH 7.5
CVE-2026-21507

iccDEV provides a set of libraries and tools for working with ICC color management profiles. Versions 2.3.1 and below have an infinite loop in the Ic…

Fix: 2.3.1.1+
Fix from $1,950 2026-01-06
Aiohttp HIGH 7.5
CVE-2025-69227

AIOHTTP is an asynchronous HTTP client/server framework for asyncio and Python. Versions 3.13.2 and below allow for an infinite loop to occur when as…

Fix: 3.13.3+
Fix from $1,950 2026-01-06
Wireshark MEDIUM 5.5
CVE-2025-13946

MEGACO dissector infinite loop in Wireshark 4.6.0 to 4.6.1 and 4.4.0 to 4.4.11 allows denial of service

Fix: 4.4.12 / 4.6.2+
Fix from $1,600 2025-12-03
Mozart Next 100 Firmware HIGH 7.5
CVE-2025-66252

Infinite Loop Denial of Service via Failed File Deletion in DB Electronica Telecomunicazioni S.p.A. Mozart FM Transmitter versions 30, 50, 100, 300, …

No fix yet
Fix from $1,950 2025-11-26
Limesurvey HIGH 7.5
CVE-2025-41074

Vulnerability in LimeSurvey 6.13.0 in the endpoint /optout that causes infinite HTTP redirects when accessed directly. This behavior can be exploite…

Mitigation only
Fix from $1,950 2025-11-20
Limesurvey HIGH 7.5
CVE-2025-41075

Vulnerability in LimeSurvey 6.13.0 in the endpoint /optin that causes infinite HTTP redirects when accessed directly. This behavior can be exploited …

Mitigation only
Fix from $1,950 2025-11-20
Fast Dds HIGH 7.5
CVE-2025-63829

eProsima Fast-DDS v3.3 and before has an infinite loop vulnerability caused by integer overflow in the Time_t:: fraction() function.

Fix: after 3.3.0
Fix from $1,950 2025-11-18
Libarchive MEDIUM 5.5
CVE-2025-60753

An issue was discovered in libarchive bsdtar before version 3.8.1 in function apply_substitution in file tar/subst.c when processing crafted -s subst…

Fix: after 3.8.1
Fix from $1,600 2025-11-05
Wireshark MEDIUM 5.5
CVE-2025-11626

MONGO dissector infinite loop in Wireshark 4.4.0 to 4.4.9 and 4.2.0 to 4.2.13 allows denial of service

Fix: 4.2.14 / 4.4.10+
Fix from $1,600 2025-10-10
Linux Kernel MEDIUM 5.5
CVE-2023-53481

In the Linux kernel, the following vulnerability has been resolved: ubi: ubi_wl_put_peb: Fix infinite loop when wear-leveling work failed Following…

Fix: 4.14.308 / 4.19.276+
Fix from $1,600 2025-10-01